Network Security Engineer – Network Access Control

Jobtailor

Colorado

On-site

USD 120,000 - 160,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Bank of America is seeking a seasoned security engineering professional to support enterprise security capabilities, drive major milestones, and report on key metrics across a global network footprint.

The role requires hands-on Cisco ISE/SNA experience, threat modeling, and collaboration with cross-functional teams to deliver robust security solutions and deployment strategies.

Qualifications

  • 5+ years of hands-on experience with Cisco ISE and Cisco SNA in enterprise environments
  • Experience designing and troubleshooting distributed Cisco ISE deployments (PAN, PSN, MnT nodes)
  • Experience with 802.1X authentication (wired and wireless) and MAC Authentication Bypass (MAB)
  • Experience with NetFlow/IPFIX analysis, behavioral analytics, East-West traffic visibility, insider threat detection, data exfiltration detection, and threat hunting
  • Ability to work effectively with technical and non-technical business owners
  • Experience working in large enterprise environments
  • Strong understanding of TCP/IP, Routing and Switching, BGP, OSPF, VLANs, VRFs, and RADIUS
  • Experience with Cisco Catalyst, Nexus, and wireless infrastructure
  • Experience with packet capture and protocol analysis using Wireshark
  • Exposure to Skyhigh Secure Web Gateway (SWG)
  • Exposure to proxy policy categories

Responsibilities

  • Support multiple security engineering efforts to deliver enterprise security capabilities
  • Serve as a subject matter expert on security technology
  • Oversee major engineering milestones, including system design, development, and implementation
  • Report on key metrics
  • Execute engineering initiatives and partner with cross-functional teams across BofA's global network footprint
  • Identify gaps in environment management standards adherence and develop plans to close them
  • Define and ensure security requirements based on BofA standards and policies
  • Incorporate threat models, diagrams, and technology requirements into solution development
  • Use network, virtualization, and datacenter technologies to support deployment strategies
  • Work across technology teams to understand and deliver system requirements
  • Build and improve processes for system transformation, quality controls, dependency management, and workload management
  • Implement integration, regression, and performance test suites
  • Analyze test reports, identify issues, and triage root causes
  • Document and communicate deployment, maintenance, support, and business functionality requirements
  • Follow team delivery and release processes and cadence

Job description

  • Support multiple security engineering efforts to deliver enterprise security capabilities
  • Serve as a subject matter expert on security technology
  • Oversee major engineering milestones, including system design, development, and implementation
  • Report on key metrics
  • Execute engineering initiatives and partner with cross-functional teams across BofA's global network footprint
  • Identify gaps in environment management standards adherence and develop plans to close them
  • Define and ensure security requirements based on BofA standards and policies
  • Incorporate threat models, diagrams, and technology requirements into solution development
  • Use network, virtualization, and datacenter technologies to support deployment strategies
  • Work across technology teams to understand and deliver system requirements
  • Build and improve processes for system transformation, quality controls, dependency management, and workload management
  • Implement integration, regression, and performance test suites
  • Analyze test reports, identify issues, and triage root causes
  • Document and communicate deployment, maintenance, support, and business functionality requirements
  • Follow team delivery and release processes and cadence
Requirements
  • 5+ years of hands-on experience with Cisco ISE and Cisco SNA in enterprise environments
  • Experience designing and troubleshooting distributed Cisco ISE deployments (PAN, PSN, MnT nodes)
  • Experience with 802.1X authentication (wired and wireless) and MAC Authentication Bypass (MAB)
  • Experience with NetFlow/IPFIX analysis, behavioral analytics, East-West traffic visibility, insider threat detection, data exfiltration detection, and threat hunting
  • Ability to work effectively with technical and non-technical business owners
  • Experience working in large enterprise environments
  • Strong understanding of TCP/IP, Routing and Switching, BGP, OSPF, VLANs, VRFs, and RADIUS
  • Experience with Cisco Catalyst, Nexus, and wireless infrastructure
  • Experience with packet capture and protocol analysis using Wireshark
  • Exposure to Skyhigh Secure Web Gateway (SWG)
  • Exposure to proxy policy categories
Core Competencies

Demonstrates extensive experience in security engineering, particularly with Cisco ISE and SNA, while effectively collaborating with cross-functional teams to enhance enterprise security capabilities. Proficient in system design, implementation, and adherence to security standards and policies.

Highest-signal resume keywords
  • Cisco ISE Deployment
  • 802.1X Authentication
  • NetFlow/IPFIX Analysis
  • TCP/IP Networking
  • Packet Capture and Protocol Analysis
Hard Skills
  • Cisco ISE
  • Cisco SNA
  • 802.1X Authentication
  • MAC Authentication Bypass
  • NetFlow/IPFIX
  • TCP/IP
  • Routing and Switching
  • BGP
  • OSPF
  • Wireshark
Soft Skills
  • Effective Communication
  • Collaboration with Technical and Non-Technical Teams
Industry Keywords
  • Enterprise Security
  • Threat Detection
  • Behavioral Analytics
  • Data Exfiltration Detection
  • Insider Threat Detection
Tools & Technologies
  • Cisco Catalyst
  • Cisco Nexus
  • Skyhigh Secure Web Gateway
  • Virtualization Technologies
  • Datacenter Technologies
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Engineer - Network Access Control
Network Security Engineer - Network Access Control

United States Digital Space LLC • Chicago (IL), Washington

On-site
USD 98,000 - 160,000
Discretionary incentive eligible
Benefits eligible
Infrastructure Engineer – Lead
Infrastructure Engineer – Lead

Jobtailor • New Jersey

On-site
USD 120,000 - 160,000
Network Security Engineer - Network Access Control
Network Security Engineer - Network Access Control

Bank of America • Denver (CO)

On-site
USD 98,000 - 160,000
Discretionary incentive
Benefits package
Network Engineer - Senior
Network Engineer - Senior

New Directions Technologies, Inc • Port Hueneme (CA)

On-site
USD 79,000 - 102,000
Senior Information Security Analyst – CSIRT
Senior Information Security Analyst – CSIRT

Jobtailor • Mount Laurel Township (NJ)

On-site
USD 110,000 - 170,000
Senior Network Engineer
Senior Network Engineer

Inabia-Software- • Santa Clara (CA)

On-site
USD 170,000 - 210,000
Software Engineering Lead
Software Engineering Lead

Jobtailor • California (MO)

On-site
USD 180,000 - 240,000
Security Field Engineer III
Security Field Engineer III

Network Solutions, Inc. • Indiana (PA)

On-site
USD 110,000 - 160,000
Remote work option
Occasional travel to customer sites
Network Security Engineer
Network Security Engineer

Insight Global • Greenwood Village (CO)

On-site
USD 100,000 - 130,000
Senior Network Engineer
Senior Network Engineer

Brooksource • Charlotte (NC)

On-site
USD 90,000 - 130,000